CVE-2025-4043: Milesight UG65-868m-Ea Firmware

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is executed on a system boot.

Affected products

  • Milesight UG65-868m-Ea Firmware: before 60.0.0.46 (fixed in 60.0.0.46)

Published 2025-05-07. Last modified 2026-06-17.